2026 CVE Vulnerabilities
65,619 CVEs published in 2026.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-89892 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: em28xx: defer audio-only extension registrat... |
| CVE-2026-89891 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: em28xx: fix use-after-free of dev_next->devl... |
| CVE-2026-89889 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: i2c: imx415: Release runtime PM reference on... |
| CVE-2026-89886 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: fix async notifier cleanup leak ... |
| CVE-2026-89884 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: platform: mtk-mdp3: fix NULL deref on failed... |
| CVE-2026-89881 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: rtl2832_sdr: use vb2_video_unregister_device... |
| CVE-2026-89879 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: s2255: bound JPEG frame size before copying ... |
| CVE-2026-89878 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: s2255: check firmware size before reading tr... |
| CVE-2026-89876 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: tda18250: fix possible integer overflow Int... |
| CVE-2026-89874 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: v4l2-async: avoid deleting unlinked ASC entr... |
| CVE-2026-89872 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: v4l2-fwnode: Fix fwnode leak in v4l2_fwnode_... |
| CVE-2026-89871 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: video-i2c: fix kthread error pointer left in... |
| CVE-2026-89869 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: qcom: iris: use disable_irq() during power-o... |
| CVE-2026-89868 | — | — | 0.2% | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Add timeout while stop_s... |
| CVE-2026-89867 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Defer job_finish() only ... |
| CVE-2026-89866 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: media: chips-media: wave5: Resume device before set... |
| CVE-2026-89865 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Zero SFP DMA buffer in FRU/I2C bsg h... |
| CVE-2026-89864 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound i2c->length in I2C bsg handler... |
| CVE-2026-89862 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix BSG job leak on validate flash i... |
| CVE-2026-89859 | — | — | 0.2% | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Zero dport diagnostics buffer to avo... |
| CVE-2026-89858 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Bound image count in qla2x00_update_... |
| CVE-2026-89855 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Serialize flash version read in rese... |
| CVE-2026-89853 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix FCE trace use-after-free during ... |
| CVE-2026-89852 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Zero mailbox struct in qla2x00_get_f... |
| CVE-2026-89851 | — | — | — | Sep 16, 2026 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix FCE trace enable parsing in debu... |
Check if your code is affected by 2026 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now